Home icon

AWS Marketplace managed Amazon Elastic Container Registry (Amazon ECR): Controlling access and permissions

AWS Marketplace Blog



This article discusses managing access and permissions for container images in AWS Marketplace's Elastic Container Registry (ECR) repositories. The key points include:

  • AWS Marketplace provides private ECR repositories for sellers to publish container images
  • Sellers can control repository access using IAM policies with least privilege principles
  • Three user personas are explored: Administrator, Developer, and Read-only user
  • Administrators can create granular policies limiting actions like image pushing and listing
  • Developers can be restricted to specific repositories and actions
  • Read-only users can only view image metadata without pushing capabilities

The approach enables AWS Partners to securely manage their container images in AWS Marketplace while maintaining strict access controls.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Dec 26
2024
Amazon ECR expands registry policy to all ECR actions
Mar 13
2025
Manage authorization within a containerized workload using Amazon Verified Permissions
Dec 16
2025
Expanding container security and choice with Amazon ECR Public
Nov 21
2025
Amazon ECR now supports managed container image signing

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.